1. Our principle
A cookie is a small file placed on your device by the website you visit. The Belgian Act of 13 June 2005 on electronic communications and the GDPR require your prior consent, except for cookies strictly necessary to provide the service you have asked for.
We use only that last category. We do not measure your audience, do not track your browsing from one site to another, load neither advertising pixel nor social network button, and share no identifier with a third party for targeting purposes.
That is why you see no consent banner: there is nothing to accept or refuse. A banner covering nothing would be a misleading formality.
2. Cookies set
- authjs.session-token
- Keeps your session open after sign-in, so a code is not asked for on every page. Lifetime: 30 days. Necessary.
- authjs.csrf-token
- Protects forms against requests forged from another website. Lifetime: the browser session. Necessary.
- authjs.callback-url
- Remembers the page to reopen after signing in. Lifetime: the browser session. Necessary.
- wobelio-langue
- Remembers the language you chose, so it is not asked for on every visit. Lifetime: 1 year. Necessary for the service requested.
- wobelio-theme
- Remembers the light or dark theme and lets the server apply it from the very first paint. Lifetime: 1 year. Necessary for the service requested.
Session cookies are issued with the `HttpOnly`, `Secure` and `SameSite` attributes, which make them unreachable from page scripts and prevent them from being sent from another website.
3. Local storage
Your browser also keeps, in its local storage, the theme you chose (key `wobelio-theme`) and the draft of the website being created as long as you have no account. That information never leaves your device and is never sent to us.
It is removed by clearing your browsing data, with no consequence other than losing an unsaved draft.
4. Cookies on published websites
This policy covers the platform itself. A website built with Wobelio may set other cookies, in particular where its owner enables audience measurement such as Google Analytics.
In that case, the website owner is answerable for them: it is for that owner to obtain visitors' prior consent, to leave them a way of withdrawing it, and to describe it in their own legal notice. The legal page templates provided by the platform set out that obligation.
5. Managing cookies
You may at any time inspect, block or delete cookies already set, from your browser settings, usually under "Privacy and security".
As the cookies described above are necessary, blocking them has direct consequences: sign-in can no longer be maintained, forms are rejected by the protection against forged requests, and language and theme fall back to their default on every visit. Public pages remain readable.
6. Questions and updates
This policy is updated whenever a cookie is added or removed. Should a non-necessary cookie ever be used, a prior consent mechanism would be put in place before anything is set.
For any question: info@espero-soft.com. The processing of personal data is described in the privacy policy.